Tag

#Vulnerability

articleCRITICAL 10.0

Critical Stored XSS Vulnerability in SunEditor (CVE-2026-59167): A Deep Dive Analysis

A critical stored cross-site scripting (XSS) vulnerability, CVE-2026-59167, has been discovered in SunEditor, a popular WYSIWYG editor used in various web applications. With a CVSS score of 10, this vulnerability allows attackers to inject malicious scripts, potentially leading to data exposure, unauthorized browser-context actions, or other malicious activities. The vulnerability affects SunEditor versions prior to 2.47.11 and has been patched in the latest release. Organizations using SunEditor should immediately upgrade to version 2.47.11 or later to mitigate this critical threat.

1 source
blogHIGH 8.8

Understanding and Defending Against ZTE SmartLife Platform Vulnerabilities

This educational analysis delves into the critical vulnerabilities discovered in the ZTE SmartLife platform, particularly focusing on CVE-2026-86553, which has a CVSS score of 8.8. These vulnerabilities, if exploited, could allow attackers to take over user accounts, posing significant risks to users' privacy and security. The analysis aims to provide a deep understanding of the threat, its mechanics, and most importantly, defensive strategies to mitigate these risks.

1 source
blogCRITICAL 9.0

Understanding and Defending Against Critical Vulnerabilities in Adobe Connect and AEM Forms

Adobe recently patched nine critical security flaws in Connect and AEM Forms, which could be exploited for arbitrary code execution and privilege escalation. This analysis will delve into the details of these vulnerabilities, providing insights into their nature, potential impact, and defensive strategies. By understanding these critical flaws, security practitioners can better protect their organizations from potential attacks.

1 source
articleHIGH 8.4

Critical RCE Vulnerability in MCP-for-Stata: CVE-2026-55071

A critical vulnerability (CVE-2026-55071) has been discovered in MCP-for-Stata, a server for integrating Stata into agent loops. The vulnerability, with a CVSS score of 8.4, allows for arbitrary command execution (RCE) due to improper input validation in the ado_package_install tool. This affects versions prior to 1.19.0 and can be exploited by embedding newline characters in the package argument to inject Stata commands. Immediate patching to version 1.19.0 is recommended.

1 source
newsCRITICAL 9.4

Critical Vulnerability in Suricata: CVE-2026-94084

A critical use-after-free vulnerability (CVE-2026-94084) has been discovered in Suricata versions before 8.0.7. This vulnerability can be exploited remotely, allowing attackers to potentially achieve high confidentiality, integrity, and low availability impacts. Security professionals should update Suricata to version 8.0.7 or later immediately.

1 source
articleHIGH 8.8

CVE-2026-78295: Unauthenticated Cross-Site Request Forgery (CSRF) in Xagio SEO Plugin

A critical vulnerability, CVE-2026-78295, with a CVSS score of 8.8, was discovered in the Xagio SEO plugin (versions <= 7.1.0.43) for WordPress. This unauthenticated Cross-Site Request Forgery (CSRF) vulnerability allows attackers to perform high-impact actions on affected sites. Although not actively exploited, the vulnerability's severity and potential impact warrant immediate attention. Organizations using the affected plugin versions should apply the available patch (version 7.1.0.44) as soon as possible.

1 source
blogHIGH 7.1

Bypassing Content Sandbox in Grav CMS via Twig Variables

A vulnerability in Grav CMS allows attackers with page-content edit access to read sensitive configuration data, including secrets, due to the way Twig variables are handled in the content sandbox.

1 source
newsHIGH 8.8

Critical Vulnerability in Jenkins Script Security Plugin Allows Arbitrary Code Execution

A critical vulnerability, CVE-2026-92124, with a CVSS score of 8.8, was discovered in the Jenkins Script Security Plugin. This vulnerability allows attackers with permission to define and run sandboxed scripts to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM. Affected versions of the plugin must be updated to prevent exploitation.

1 source
articleCRITICAL 9.1

Critical Command Injection Vulnerability in Conflibot: CVE-2026-55158

A critical vulnerability (CVE-2026-55158) with a CVSS score of 9.1 has been discovered in Conflibot, a tool used to warn about potential conflicts in GitHub pull requests. The vulnerability allows for arbitrary command execution, secret exfiltration, and unauthorized pushes due to improper handling of user-controlled input in the pull request branch name. This affects Conflibot versions prior to 1.2.1. Immediate patching or upgrade to version 1.2.1 or 2.0.0 is strongly recommended.

1 source
blogHIGH 8.8

Understanding and Defending Against CVE-2026-56711: A Buffer Overflow Vulnerability in VLC Media Player

CVE-2026-56711 is a buffer overflow vulnerability in VLC media player that allows attackers to execute arbitrary code. The vulnerability is caused by a 32-bit arithmetic computation in the AllocatePicture function that leads to a buffer overflow when a crafted PNG file with large width and height is processed. This vulnerability has a CVSS score of 8.8 and is classified as HIGH severity.

1 source
newsHIGH 8.0

Tenable Hexa AI Vulnerability: Agentic Harness Exploitation

A critical vulnerability in Tenable Hexa AI's agentic harness allows attackers to manipulate AI agents, potentially leading to unauthorized changes in production environments. Security professionals must take immediate action to control and monitor AI agents. The severity level of this threat is high.

1 source
articleCRITICAL 9.0

Critical Chrome V8 Vulnerability Actively Exploited in the Wild

A critical vulnerability in the V8 engine of Google Chrome is being actively exploited in the wild. This vulnerability is part of a massive update that fixes 230 flaws in total. The severity of this vulnerability is high, and users are strongly advised to update their Chrome browsers immediately. The exploit allows attackers to execute arbitrary code, leading to potential data breaches and system compromise.

1 source
articleCRITICAL 9.9

Critical Command Injection Vulnerability in Advantech WISE-6610 Series

A critical vulnerability (CVE-2026-79697) with a CVSS score of 9.9 was discovered in Advantech's WISE-6610 series, affecting multiple models and versions. The vulnerability allows for remote command injection, enabling an attacker to execute arbitrary commands on the device. The exploit has been publicly disclosed, but it is not currently being actively exploited. Immediate patching to version 1.2.4_20260821 is recommended to mitigate this vulnerability.

1 source
articleHIGH 8.7

CVE-2026-56811: Unbounded Channel Joins in Phoenix Transports Enable Denial of Service

A vulnerability in Phoenix transports allows an unauthenticated remote attacker to cause a denial of service against any Phoenix app that exposes LongPoll/WebSocket transports. The vulnerability has a CVSS score of 8.7 and affects multiple versions of the Phoenix framework. To mitigate, users should update to patched versions and consider applying rate limits and other security measures.

1 source
articleHIGH 8.5

Critical NLTK Vulnerability: Uncontrolled Search Path in Graphviz 'dot' Binary Execution

A critical vulnerability (CVE-2026-78680, CVSS 8.5) in the Natural Language Toolkit (NLTK) library allows attackers to execute arbitrary code by manipulating the search path for the Graphviz 'dot' binary. This affects NLTK versions <= 3.10.2. Immediate patching to version 3.10.3 or later is recommended to prevent potential code execution.

1 source
newsHIGH 7.5

CVE-2026-38636: relibc seekdir() Function Denial of Service Vulnerability

A vulnerability in the seekdir() function of relibc allows attackers to cause a Denial of Service (DoS) via a crafted input. The vulnerability has a CVSS score of 7.5 and is classified as HIGH severity. Affected systems include those using relibc commit 61f42d.

1 source
newsHIGH 8.2

CVE-2026-47877: Spring Security Authorization Server Vulnerability

A vulnerability in Spring Security Authorization Server's default consent page allows an attacker to inject user-controlled values without HTML entity encoding, potentially leading to XSS attacks. Affected versions include Spring Security 7.1.0 and 7.0.0-7.0.6. The CVSS score is 8.2, indicating a high severity vulnerability.

1 source
articleCRITICAL 9.8

Critical Vulnerability in Spring Framework: CVE-2026-47891

A critical vulnerability (CVE-2026-47891) with a CVSS score of 9.8 affects multiple versions of the Spring Framework, allowing for remote code execution. The vulnerability occurs due to incorrect enforcement of the maxInMemorySize limit in Spring WebFlux applications relying on the Aalto XML processor. Immediate patching is recommended to prevent potential exploitation.

1 source
newsHIGH 7.5

Linux Kernel Vulnerability: CVE-2026-74741 - NULL Pointer Dereference in Non-MSI-X Interrupt Enabling

A vulnerability in the Linux kernel, specifically in the ngbe driver, allows for a NULL pointer dereference in non-MSI-X interrupt enabling. This issue has a CVSS score of 7.5 and can lead to a denial of service (DoS) attack. Affected systems include Linux versions prior to specific commits and version 6.16.

1 source
articleCRITICAL 9.8

Critical Nokogiri Vulnerability: CVE-2025-71407

A critical vulnerability (CVE-2025-71407) with a CVSS score of 9.8 affects Nokogiri, a popular Ruby gem for parsing XML and HTML. The vulnerability involves a stack buffer overflow and a use-after-free issue in libxml2, which can lead to denial of service or potential code execution. Affected versions are Nokogiri before 1.18.3. Immediate patching is recommended.

1 source
blogHIGH 8.8

DNS Rebinding Vulnerability in GenieACS MCP

A DNS rebinding vulnerability exists in the genieacs-mcp package, allowing a malicious web page to interact with a victim's local GenieACS MCP server. This can lead to unauthorized access and control of the GenieACS system.

1 source
newsCRITICAL 9.1

CVE-2026-67602: phpIPAM REST API Authentication Bypass Vulnerability

A critical vulnerability (CVE-2026-67602, CVSS 9.1) in phpIPAM before 1.8.2 allows unauthenticated attackers to bypass authentication and gain full API access, enabling them to read, write, and delete IP address management records. This vulnerability is due to an insecure object cache keying mechanism in the REST API.

1 source
blogHIGH 8.8

CVE-2026-78170: Buffer Overflow in UTT HiPER 1200GW

A buffer overflow vulnerability was discovered in UTT HiPER 1200GW up to version 2.5.3-170306. The flaw exists in the strcpy function of the file /goform/formConfigFastDirectionW, which can be exploited remotely by manipulating the ssid argument. This vulnerability has a CVSS score of 8.8 and is classified as a CWE-119 and CWE-120 weakness.

1 source
newsHIGH 8.9

Critical Vulnerability in Velociraptor: CVE-2026-19200

A critical vulnerability (CVE-2026-19200, CVSS 8.9) in Velociraptor allows attackers with NOTEBOOK_EDIT permission to overwrite existing artifacts without required permissions, potentially leading to high impact on confidentiality and integrity. Affected versions are Velociraptor < 0.77.2 on Linux and Windows. Immediate mitigation is required.

1 source
articleHIGH 7.5

Critical Symlink-Based Sandbox Bypass in NLTK FramenetCorpusReader (CVE-2026-62384)

CVE-2026-62384 is a critical symlink-based sandbox bypass vulnerability in NLTK's FramenetCorpusReader, affecting versions before 3.10.2. This vulnerability allows attackers to read arbitrary XML files outside the corpus root, with a CVSS score of 7.5. Organizations should immediately upgrade to NLTK version 3.10.2 or later to mitigate this high-severity threat.

1 source
newsHIGH 7.5

Authorization Bypass Vulnerability in WWBN AVideo (CVE-2026-59256)

A vulnerability in WWBN AVideo allows attackers to bypass authorization checks by retrieving a token from the Gallery endpoint, affecting video content access. The vulnerability has a CVSS score of 7.5 and is classified as HIGH severity. AVideo users should update to a fixed version to mitigate this risk.

1 source
newsCRITICAL 9.8

CVE-2026-14950: Critical Session Fixation Vulnerability in Frauscher Sensortechnik FDS 102

A critical vulnerability (CVE-2026-14950, CVSS 9.8) exists in Frauscher Sensortechnik's FDS 102, allowing an unauthenticated remote attacker to continue using a valid session after it has expired. This could enable unauthorized access to the FDS web interface. Affected versions are 2.1.0 to 2.13.3; users should update to version 2.13.4 or later.

1 source
blogHIGH 8.1

Understanding and Defending Against CVE-2026-15371: A JavaScript XSS Vulnerability in Velociraptor

CVE-2026-15371 is a high-severity vulnerability in Velociraptor, a security tool used for endpoint monitoring and response. The vulnerability allows an attacker to inject malicious JavaScript code via a crafted URL, leading to a cross-site scripting (XSS) attack. This vulnerability has a CVSS score of 8.1, indicating a high level of severity. Understanding and mitigating this vulnerability is crucial to prevent potential attacks.

1 source
newsHIGH 8.1

CVE-2026-75044: JetBrains YouTrack Authorization Bypass Vulnerability

A vulnerability in JetBrains YouTrack before versions 2025.3.156085, 2026.1.13914, and 2026.2.18095 allows an authenticated user to delete arbitrary entities via the mailbox endpoint due to missing authorization. This vulnerability has a CVSS score of 8.1, indicating high severity. Affected organizations should update to a patched version immediately.

1 source
articleCRITICAL 9.0

Critical Mac Screen Sharing Vulnerability Under Active Exploitation

A vulnerability in Mac Screen Sharing is being actively exploited in the wild, allowing attackers to gain root access and install Monero cryptominers. This vulnerability poses a significant threat to Mac users, particularly those with Screen Sharing enabled. Immediate action is required to patch vulnerable systems and prevent further exploitation. The vulnerability is being exploited in the wild, and organizations should prioritize patching to prevent potential compromise.

1 source